| Vuln ID | Severity | Asset | STIG | Title | Status | Doc Status | Assigned To | Actions |
|---|---|---|---|---|---|---|---|---|
| V-228375 | CAT II | MONT-MB-002 | Microsoft Exchange 2016 Mailbox Server S... | Exchange internal Receive connectors must require ... | - | |||
Check TextNote: AuthMechanism may include other mechanisms as long as the "Tls" is identified. Open the Exchange Management Shell and enter the following command: Get-ReceiveConnector | Select Name, Identity, AuthMechanism For each Receive connector, if the value of "AuthMechanism" is not set to "Tls", this is a finding. Fix TextOpen the Exchange Management Shell and enter the following command: Set-ReceiveConnector -Identity <'IdentityName'> -AuthMechanism 'Tls' Note: The <IdentityName> value must be in single quotes. Repeat the procedures for each Receive connector. Finding DetailsEvaluate-STIG 1.2507.5 (Scan-MSExchange2016MB_Checks) found this to be NOT A FINDING on 10/23/2025 ResultHash: 0F0A2FB529F9459CA8C8D64C822BDFB9A14AE8E3 ~~~~~ Default MONT-MB-002 AuthMechanism: Tls, Integrated, BasicAuth, BasicAuthRequireTLS, ExchangeServer Client Proxy MONT-MB-002 AuthMechanism: Tls, Integrated, BasicAuth, BasicAuthRequireTLS, ExchangeServer Default Frontend MONT-MB-002 AuthMechanism: Tls, Integrated, BasicAuth, BasicAuthRequireTLS, ExchangeServer Outbound Proxy Frontend MONT-MB-002 AuthMechanism: Tls, Integrated, BasicAuth, BasicAuthRequireTLS, ExchangeServer Client Frontend MONT-MB-002 AuthMechanism: Tls, Integrated, BasicAuth, BasicAuthRequireTLS
Source: _Reviewed/MONT-MB-002/Checklist/MONT-MB-002_MSExchange2016MB_V2R6_20251023-152357.ckl
Scan Date: 2026-01-14T12:57:33.455034
Technology Area: Exchange Server
|
||||||||